Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\services\SSDP KtmRm Tablet Class Protection] 'Start' = '00000002'
- 'C:\reczbjzykt\laddwypu.exe' "c:\reczbjzykt\pvndtysqfqu.exe"
- 'C:\reczbjzykt\pvndtysqfqu.exe'
- 'C:\reczbjzykt\barxfxtkqtgajlsmlq7o.exe'
- C:\reczbjzykt\pvndtysqfqu.exe
- C:\reczbjzykt\laddwypu.exe
- C:\reczbjzykt\hgkb0u
- %WINDIR%\reczbjzykt\nb6mijgeou5
- C:\reczbjzykt\nb6mijgeou5
- C:\reczbjzykt\barxfxtkqtgajlsmlq7o.exe
- C:\reczbjzykt\laddwypu.exe
- C:\reczbjzykt\pvndtysqfqu.exe
- C:\reczbjzykt\barxfxtkqtgajlsmlq7o.exe
- %WINDIR%\reczbjzykt\nb6mijgeou5
- DNS ASK tw####reason.net
- DNS ASK mi####reason.net
- DNS ASK mi####orderly.net
- DNS ASK mi###evalue.net
- DNS ASK tw####orderly.net
- DNS ASK tw####almost.net
- DNS ASK of###value.net
- DNS ASK al####rderly.net
- DNS ASK dn#.##ftncsi.com
- DNS ASK mi####almost.net
- DNS ASK al###value.net
- ClassName: 'Shell_TrayWnd' WindowName: ''